| [Created by: generate-chains.py] |
| |
| Certificate chain where the root certificate contains a basic constraints |
| extension that indicates it is NOT a CA. |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 6a:33:a7:7b:9f:65:b9:e0:d2:be:48:ba:f7:f8:a0:3f:bd:05:6f:10 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Intermediate |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Target |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:b3:7d:07:29:33:df:ea:eb:78:7f:88:ef:13:78: |
| ff:42:10:a6:ae:9c:8d:9e:c6:48:37:77:a4:2c:27: |
| 81:cd:a9:b2:54:b5:84:cd:0a:a1:90:11:28:1d:85: |
| 0f:9a:88:a4:a1:75:36:42:53:19:71:4d:da:17:02: |
| 9f:80:94:58:55:87:23:47:47:be:8a:64:15:d6:15: |
| 6f:fe:73:a2:e7:e8:5a:01:48:33:ae:21:a1:7c:a3: |
| 3a:58:fc:2c:25:f5:ab:ff:bb:3d:ff:e1:2f:62:d8: |
| 79:ec:e5:d6:b0:33:dc:ce:68:ca:f5:96:b7:0e:5f: |
| 22:80:09:e8:ca:6c:14:64:84:97:a9:c0:bf:57:e4: |
| ad:42:46:c6:58:07:2d:12:18:a2:d1:1f:5d:40:0e: |
| 93:19:eb:a0:4b:49:f5:1e:f6:8b:f9:6f:37:96:e4: |
| 07:04:71:bc:da:d4:e0:3f:3d:4e:3e:71:40:e8:39: |
| 27:ab:c8:2d:b4:22:45:51:32:8a:c4:21:10:84:fe: |
| ba:74:3e:72:8e:64:66:24:f6:a2:7a:f9:10:29:9d: |
| 48:59:57:a9:0a:59:b4:00:60:5c:e1:93:4f:53:23: |
| a1:2e:a3:a3:eb:49:2c:8a:d1:2d:ba:bb:57:c3:a4: |
| 5f:78:85:4b:8d:b0:6a:89:f0:cc:ba:be:60:89:a8: |
| 9c:49 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 72:41:94:01:8B:5E:D8:39:1C:E1:A1:6F:76:49:3E:9F:93:09:60:3A |
| X509v3 Authority Key Identifier: |
| keyid:7A:10:56:B4:5F:2F:4E:7E:28:92:1A:46:EE:EB:8F:1E:A0:B6:3B:02 |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Intermediate.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Intermediate.crl |
| |
| X509v3 Key Usage: critical |
| Digital Signature, Key Encipherment |
| X509v3 Extended Key Usage: |
| TLS Web Server Authentication, TLS Web Client Authentication |
| Signature Algorithm: sha256WithRSAEncryption |
| 59:ff:6b:49:b1:9d:6b:7e:65:47:a8:71:d0:ea:d8:cc:a4:10: |
| 03:88:37:b5:b6:2c:2c:0b:ce:2a:00:0b:7a:c4:8c:16:15:89: |
| 2e:e8:f5:f7:57:71:c9:1c:f2:f5:8f:1f:47:b4:f2:e1:c7:c8: |
| 98:22:16:8e:81:77:e7:40:36:59:5a:ce:51:b1:7f:e0:5e:4c: |
| e3:c0:08:16:47:36:a2:4a:bd:58:40:d4:e3:e2:1a:55:c8:aa: |
| d3:8b:a9:7e:50:36:ea:d2:91:b9:3a:44:6d:fd:38:1b:70:fa: |
| b3:fc:a7:7f:ef:e1:74:8e:b5:b9:16:d5:53:45:f3:9f:38:a5: |
| d0:05:01:db:bd:2b:a7:c3:7d:fa:87:88:7f:cf:2c:f2:d3:7f: |
| 52:79:87:50:26:14:cb:85:47:02:7a:b9:71:96:58:31:7c:a7: |
| ab:f9:89:71:b0:5f:56:ab:cd:56:da:b2:4b:8a:ea:2d:31:c4: |
| 1a:63:19:dd:86:e7:e4:be:a9:14:d2:b4:b8:46:9e:66:3c:c7: |
| 16:6e:13:36:da:5a:b5:60:bf:69:c6:f9:2d:59:f2:6e:3e:35: |
| 2c:da:08:92:39:cd:0b:09:1d:fa:3e:56:1d:f0:75:5d:9e:34: |
| 92:c1:6f:36:38:50:93:8b:9c:05:55:47:7d:8e:a6:86:6a:6f: |
| b4:68:72:62 |
| -----BEGIN CERTIFICATE----- |
| MIIDoDCCAoigAwIBAgIUajOne59lueDSvki69/igP70FbxAwDQYJKoZIhvcNAQEL |
| BQAwFzEVMBMGA1UEAwwMSW50ZXJtZWRpYXRlMB4XDTE4MDMxMDEyMDAwMFoXDTIx |
| MDEwMTEyMDAwMFowETEPMA0GA1UEAwwGVGFyZ2V0MIIBIjANBgkqhkiG9w0BAQEF |
| AAOCAQ8AMIIBCgKCAQEAs30HKTPf6ut4f4jvE3j/QhCmrpyNnsZIN3ekLCeBzamy |
| VLWEzQqhkBEoHYUPmoikoXU2QlMZcU3aFwKfgJRYVYcjR0e+imQV1hVv/nOi5+ha |
| AUgzriGhfKM6WPwsJfWr/7s9/+EvYth57OXWsDPczmjK9Za3Dl8igAnoymwUZISX |
| qcC/V+StQkbGWActEhii0R9dQA6TGeugS0n1HvaL+W83luQHBHG82tTgPz1OPnFA |
| 6Dknq8gttCJFUTKKxCEQhP66dD5yjmRmJPaievkQKZ1IWVepClm0AGBc4ZNPUyOh |
| LqOj60ksitEturtXw6RfeIVLjbBqifDMur5giaicSQIDAQABo4HpMIHmMB0GA1Ud |
| DgQWBBRyQZQBi17YORzhoW92ST6fkwlgOjAfBgNVHSMEGDAWgBR6EFa0Xy9OfiiS |
| Gkbu648eoLY7AjA/BggrBgEFBQcBAQQzMDEwLwYIKwYBBQUHMAKGI2h0dHA6Ly91 |
| cmwtZm9yLWFpYS9JbnRlcm1lZGlhdGUuY2VyMDQGA1UdHwQtMCswKaAnoCWGI2h0 |
| dHA6Ly91cmwtZm9yLWNybC9JbnRlcm1lZGlhdGUuY3JsMA4GA1UdDwEB/wQEAwIF |
| oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDQYJKoZIhvcNAQELBQAD |
| ggEBAFn/a0mxnWt+ZUeocdDq2MykEAOIN7W2LCwLzioAC3rEjBYViS7o9fdXcckc |
| 8vWPH0e08uHHyJgiFo6Bd+dANllazlGxf+BeTOPACBZHNqJKvVhA1OPiGlXIqtOL |
| qX5QNurSkbk6RG39OBtw+rP8p3/v4XSOtbkW1VNF8584pdAFAdu9K6fDffqHiH/P |
| LPLTf1J5h1AmFMuFRwJ6uXGWWDF8p6v5iXGwX1arzVbaskuK6i0xxBpjGd2G5+S+ |
| qRTStLhGnmY8xxZuEzbaWrVgv2nG+S1Z8m4+NSzaCJI5zQsJHfo+Vh3wdV2eNJLB |
| bzY4UJOLnAVVR32OpoZqb7RocmI= |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 17:c3:5e:ff:9e:fa:1b:f7:ec:b7:42:5e:7c:00:3a:7e:d7:5e:08:56 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Intermediate |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:bb:be:bc:29:e3:c0:a2:2b:12:a7:b2:77:ff:30: |
| a1:03:d7:b9:aa:0b:7d:b4:2a:4b:e4:cb:72:cb:5e: |
| ff:34:16:06:51:e2:e5:bf:a0:ae:0b:19:34:c3:45: |
| b1:2b:df:94:3c:9c:00:1c:bf:1f:69:a5:a6:08:04: |
| 20:c9:0a:0d:c2:69:0b:a6:63:63:ab:9b:76:5b:d0: |
| 1e:d1:20:32:02:bc:4d:4b:02:7e:8a:6c:90:34:b1: |
| 2b:ae:88:da:99:fd:e0:77:f6:97:54:dc:f5:53:64: |
| 83:87:70:f9:03:c4:aa:45:2c:78:bc:b0:9b:fa:11: |
| eb:a0:8c:a4:62:12:c2:82:ee:70:83:a8:8f:19:26: |
| 1c:f0:60:e4:17:20:bf:4c:d8:76:90:42:0d:cd:82: |
| fe:e9:38:39:ca:d8:72:c0:8f:cf:98:4d:af:47:82: |
| 77:63:a7:6e:c0:e8:ac:f8:4c:a8:b1:b0:20:09:03: |
| 74:67:cc:24:5f:91:24:4a:38:05:ca:64:3e:b7:e0: |
| 03:a5:79:44:71:32:19:31:cb:0a:02:84:39:8a:a7: |
| 10:c7:6b:60:72:81:16:3f:9c:ac:f8:af:46:c4:21: |
| f4:88:30:a8:8d:62:82:1c:36:8d:b0:d9:00:bb:b5: |
| 8c:e5:7a:89:de:6c:fd:3f:f0:e1:12:50:8c:1c:02: |
| 1f:e9 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 7A:10:56:B4:5F:2F:4E:7E:28:92:1A:46:EE:EB:8F:1E:A0:B6:3B:02 |
| X509v3 Authority Key Identifier: |
| keyid:9E:16:CB:63:0C:02:2E:E7:DC:BA:AA:D5:D2:10:B0:E0:F7:2D:14:6D |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:TRUE |
| Signature Algorithm: sha256WithRSAEncryption |
| 99:3d:b2:d7:a3:0c:09:09:62:3f:8f:7e:6c:f1:ae:fa:ba:4b: |
| 55:ad:0c:47:c8:bc:b7:fa:ef:29:6f:55:6c:f2:a1:e7:ce:2b: |
| d5:6b:59:b6:49:b4:94:a8:4e:b4:39:a0:3d:3e:47:0e:ae:61: |
| f2:65:8c:ae:a0:2c:ab:41:6f:73:09:95:26:54:e2:73:0d:15: |
| 78:52:ec:64:71:9f:4f:d5:5e:3c:ed:a1:f9:aa:09:ea:b5:b5: |
| fd:da:f6:07:17:3d:cd:5d:7c:a7:f9:42:ae:19:48:b5:d9:eb: |
| b1:e5:09:64:76:82:39:de:e8:01:e9:95:33:15:ae:41:99:b9: |
| a9:b5:17:e4:c3:bc:14:22:d0:19:d0:11:af:da:9e:fa:28:41: |
| 93:22:a6:6b:67:a6:18:68:75:d6:ba:6b:25:81:23:35:fc:c4: |
| 2e:fa:65:ae:1e:12:37:d7:35:b1:4d:f6:c3:61:68:91:7c:93: |
| e7:71:8e:a9:9b:f1:da:86:a4:72:d9:af:52:67:81:5b:8a:cc: |
| 22:65:8a:40:80:74:2e:69:c7:d2:44:32:63:5b:b5:54:d8:11: |
| 53:c8:a3:fb:fa:3b:78:ab:de:a5:c5:53:ad:76:43:83:1a:cd: |
| ad:10:8c:09:af:dd:1b:5b:8c:e9:a2:d5:d3:22:d4:1e:3e:bd: |
| d2:fc:32:9c |
| -----BEGIN CERTIFICATE----- |
| MIIDgDCCAmigAwIBAgIUF8Ne/576G/fst0JefAA6ftdeCFYwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMBcxFTATBgNVBAMMDEludGVybWVkaWF0ZTCCASIwDQYJKoZIhvcNAQEBBQAD |
| ggEPADCCAQoCggEBALu+vCnjwKIrEqeyd/8woQPXuaoLfbQqS+TLcste/zQWBlHi |
| 5b+grgsZNMNFsSvflDycABy/H2mlpggEIMkKDcJpC6ZjY6ubdlvQHtEgMgK8TUsC |
| fopskDSxK66I2pn94Hf2l1Tc9VNkg4dw+QPEqkUseLywm/oR66CMpGISwoLucIOo |
| jxkmHPBg5Bcgv0zYdpBCDc2C/uk4OcrYcsCPz5hNr0eCd2OnbsDorPhMqLGwIAkD |
| dGfMJF+RJEo4BcpkPrfgA6V5RHEyGTHLCgKEOYqnEMdrYHKBFj+crPivRsQh9Igw |
| qI1ighw2jbDZALu1jOV6id5s/T/w4RJQjBwCH+kCAwEAAaOByzCByDAdBgNVHQ4E |
| FgQUehBWtF8vTn4okhpG7uuPHqC2OwIwHwYDVR0jBBgwFoAUnhbLYwwCLufcuqrV |
| 0hCw4PctFG0wNwYIKwYBBQUHAQEEKzApMCcGCCsGAQUFBzAChhtodHRwOi8vdXJs |
| LWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUwIzAhoB+gHYYbaHR0cDovL3VybC1m |
| b3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQEAwIBBjAPBgNVHRMBAf8EBTADAQH/ |
| MA0GCSqGSIb3DQEBCwUAA4IBAQCZPbLXowwJCWI/j35s8a76uktVrQxHyLy3+u8p |
| b1Vs8qHnzivVa1m2SbSUqE60OaA9PkcOrmHyZYyuoCyrQW9zCZUmVOJzDRV4Uuxk |
| cZ9P1V487aH5qgnqtbX92vYHFz3NXXyn+UKuGUi12eux5QlkdoI53ugB6ZUzFa5B |
| mbmptRfkw7wUItAZ0BGv2p76KEGTIqZrZ6YYaHXWumslgSM1/MQu+mWuHhI31zWx |
| TfbDYWiRfJPncY6pm/HahqRy2a9SZ4FbiswiZYpAgHQuacfSRDJjW7VU2BFTyKP7 |
| +jt4q96lxVOtdkODGs2tEIwJr90bW4zpotXTItQePr3S/DKc |
| -----END CERTIFICATE----- |
| |
| Certificate: |
| Data: |
| Version: 3 (0x2) |
| Serial Number: |
| 17:c3:5e:ff:9e:fa:1b:f7:ec:b7:42:5e:7c:00:3a:7e:d7:5e:08:55 |
| Signature Algorithm: sha256WithRSAEncryption |
| Issuer: CN=Root |
| Validity |
| Not Before: Mar 10 12:00:00 2018 GMT |
| Not After : Jan 1 12:00:00 2021 GMT |
| Subject: CN=Root |
| Subject Public Key Info: |
| Public Key Algorithm: rsaEncryption |
| Public-Key: (2048 bit) |
| Modulus: |
| 00:a8:a5:0e:06:b7:99:51:ad:fd:57:50:ba:00:3c: |
| ce:4b:a5:f8:a1:6d:00:ae:32:93:30:ec:a3:1b:58: |
| e3:09:5e:4e:61:fa:7f:f1:21:1a:a6:8d:bd:72:21: |
| e6:6d:82:33:7e:20:be:66:54:a6:42:92:18:db:43: |
| ef:09:93:d8:b4:6e:64:78:ce:b4:3b:9f:44:62:9f: |
| 73:dd:e9:0f:11:ce:9a:a1:82:dd:32:04:71:f2:46: |
| 03:e2:a1:7c:36:2f:78:de:97:b8:7b:da:3a:6a:b8: |
| 81:7c:d1:76:17:72:3c:a6:ba:74:4b:38:db:6b:47: |
| d3:52:f1:e0:ad:17:4f:48:fe:2b:7a:a5:28:aa:52: |
| 12:4c:f6:c2:4e:23:b5:b2:eb:9c:e1:6b:91:05:b0: |
| a7:3f:64:6f:bc:08:96:78:de:9f:ed:27:5b:d8:33: |
| b6:80:aa:80:40:a7:a3:c4:96:37:71:9a:ef:a6:2b: |
| 5d:07:e9:8d:e5:9b:84:4a:ac:db:52:68:b9:80:74: |
| be:ce:a7:c2:fe:b7:45:37:b2:c2:e9:0f:f9:54:15: |
| ab:7e:e9:c6:86:05:4a:26:f8:b6:3f:ec:a7:0a:4e: |
| 00:a1:73:3e:f3:db:77:38:0f:bc:37:9b:7c:cb:4d: |
| fc:ab:4b:d1:a2:ff:7d:1d:b1:d2:14:0d:74:bc:a4: |
| 8d:11 |
| Exponent: 65537 (0x10001) |
| X509v3 extensions: |
| X509v3 Subject Key Identifier: |
| 9E:16:CB:63:0C:02:2E:E7:DC:BA:AA:D5:D2:10:B0:E0:F7:2D:14:6D |
| X509v3 Authority Key Identifier: |
| keyid:9E:16:CB:63:0C:02:2E:E7:DC:BA:AA:D5:D2:10:B0:E0:F7:2D:14:6D |
| |
| Authority Information Access: |
| CA Issuers - URI:http://url-for-aia/Root.cer |
| |
| X509v3 CRL Distribution Points: |
| |
| Full Name: |
| URI:http://url-for-crl/Root.crl |
| |
| X509v3 Key Usage: critical |
| Certificate Sign, CRL Sign |
| X509v3 Basic Constraints: critical |
| CA:FALSE |
| Signature Algorithm: sha256WithRSAEncryption |
| 52:31:34:45:43:eb:b0:b8:16:9a:93:b2:ec:b8:7b:75:13:95: |
| f4:0a:7e:ba:4d:aa:24:b2:3c:a2:3e:18:4c:89:87:b3:01:dc: |
| ad:d0:c7:8e:b5:72:fd:fb:0b:2b:d1:65:f3:aa:f5:af:cf:25: |
| 44:21:94:bb:52:ea:e0:71:cd:b7:53:0b:8b:58:af:a7:cd:1d: |
| e1:6f:9a:64:cd:92:b7:0e:5e:37:71:2f:1d:60:2b:93:80:15: |
| ee:77:33:af:89:df:88:99:9b:ca:6a:46:0d:b8:77:d5:12:d1: |
| 99:5b:ef:4b:0a:ac:ae:81:eb:2f:b3:0c:2f:5b:3a:cc:1b:10: |
| 00:73:aa:ba:73:f7:86:8f:e2:84:6d:e5:21:f0:9b:5f:fd:4c: |
| ea:32:aa:e5:b8:fc:a7:6c:a6:89:43:05:1d:8f:33:bf:0c:31: |
| e6:c9:ef:be:81:8e:0a:c0:8c:d1:94:42:f1:03:2d:42:34:b9: |
| df:cd:13:e9:9e:da:b1:9b:9b:b6:82:5b:d6:f4:2f:c6:6a:58: |
| 65:36:6b:85:64:f1:ac:cd:ed:c3:37:66:aa:36:fa:ea:3f:b3: |
| 5e:bd:2e:0d:7a:e7:35:73:78:95:8a:9f:3f:55:2d:84:a1:54: |
| 30:1b:c0:d3:2f:83:3a:e2:ce:97:9c:ac:20:67:65:26:7f:61: |
| 9e:e8:95:d2 |
| -----BEGIN CERTIFICATE----- |
| MIIDdTCCAl2gAwIBAgIUF8Ne/576G/fst0JefAA6ftdeCFUwDQYJKoZIhvcNAQEL |
| BQAwDzENMAsGA1UEAwwEUm9vdDAeFw0xODAzMTAxMjAwMDBaFw0yMTAxMDExMjAw |
| MDBaMA8xDTALBgNVBAMMBFJvb3QwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK |
| AoIBAQCopQ4Gt5lRrf1XULoAPM5LpfihbQCuMpMw7KMbWOMJXk5h+n/xIRqmjb1y |
| IeZtgjN+IL5mVKZCkhjbQ+8Jk9i0bmR4zrQ7n0Rin3Pd6Q8Rzpqhgt0yBHHyRgPi |
| oXw2L3jel7h72jpquIF80XYXcjymunRLONtrR9NS8eCtF09I/it6pSiqUhJM9sJO |
| I7Wy65zha5EFsKc/ZG+8CJZ43p/tJ1vYM7aAqoBAp6PEljdxmu+mK10H6Y3lm4RK |
| rNtSaLmAdL7Op8L+t0U3ssLpD/lUFat+6caGBUom+LY/7KcKTgChcz7z23c4D7w3 |
| m3zLTfyrS9Gi/30dsdIUDXS8pI0RAgMBAAGjgcgwgcUwHQYDVR0OBBYEFJ4Wy2MM |
| Ai7n3Lqq1dIQsOD3LRRtMB8GA1UdIwQYMBaAFJ4Wy2MMAi7n3Lqq1dIQsOD3LRRt |
| MDcGCCsGAQUFBwEBBCswKTAnBggrBgEFBQcwAoYbaHR0cDovL3VybC1mb3ItYWlh |
| L1Jvb3QuY2VyMCwGA1UdHwQlMCMwIaAfoB2GG2h0dHA6Ly91cmwtZm9yLWNybC9S |
| b290LmNybDAOBgNVHQ8BAf8EBAMCAQYwDAYDVR0TAQH/BAIwADANBgkqhkiG9w0B |
| AQsFAAOCAQEAUjE0RUPrsLgWmpOy7Lh7dROV9Ap+uk2qJLI8oj4YTImHswHcrdDH |
| jrVy/fsLK9Fl86r1r88lRCGUu1Lq4HHNt1MLi1ivp80d4W+aZM2Stw5eN3EvHWAr |
| k4AV7nczr4nfiJmbympGDbh31RLRmVvvSwqsroHrL7MML1s6zBsQAHOqunP3ho/i |
| hG3lIfCbX/1M6jKq5bj8p2ymiUMFHY8zvwwx5snvvoGOCsCM0ZRC8QMtQjS5380T |
| 6Z7asZubtoJb1vQvxmpYZTZrhWTxrM3twzdmqjb66j+zXr0uDXrnNXN4lYqfP1Ut |
| hKFUMBvA0y+DOuLOl5ysIGdlJn9hnuiV0g== |
| -----END CERTIFICATE----- |